<?php

require_once'db_conn.php';
header("content-type:text/html;charset=uft-8");

$username = $_POST['username'];
$password = $_POST['password'];
$username = mysql_real_escape_string($username);
$password = mysql_real_escape_string($password);
$password = md5($password);

$sql = "
SELECT * 
FROM user
where account='$username'
    and password='$password'
LIMIT 1;
";

$result = $conn->query($sql);
if ($result->num_rows > 0) {
    echo "正确！";
} else {
    echo"用户名或密码错误！";
}
       

